OverlayFS in the Linux kernel before 3.0.0-16.28, as used in Ubuntu 10.0.4 LTS and 11.10, is missing inode security checks which could allow attackers to bypass security restrictions and perform unauthorized actions.
References
Configurations
History
21 Nov 2024, 01:34
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.openwall.com/lists/oss-security/2012/01/17/11 - Exploit, Mailing List, Patch, Third Party Advisory | |
References | () http://www.ubuntu.com/usn/USN-1363-1 - Third Party Advisory | |
References | () http://www.ubuntu.com/usn/USN-1364-1 - Third Party Advisory | |
References | () http://www.ubuntu.com/usn/USN-1384-1 - Third Party Advisory | |
References | () https://access.redhat.com/security/cve/cve-2012-0055 - Third Party Advisory | |
References | () https://bugs.launchpad.net/ubuntu/+source/linux/+bug/915941 - Exploit, Third Party Advisory | |
References | () https://bugzilla.suse.com/show_bug.cgi?id=CVE-2012-0055 - Issue Tracking, Third Party Advisory |
Information
Published : 2020-02-19 18:15
Updated : 2024-11-21 01:34
NVD link : CVE-2012-0055
Mitre link : CVE-2012-0055
CVE.ORG link : CVE-2012-0055
JSON object : View
Products Affected
linux
- linux_kernel
canonical
- ubuntu_linux
CWE
CWE-862
Missing Authorization